Skip to Content
APIResourcesAuthentication

Authentication

Verify an Agent Access token without requiring an unrelated product scope.

Base URL: https://app.gavana.ai/api/canvas-agent/v1 · Authentication: HTTP bearer, token format cba_<token-id>.<secret>

Operations

OperationPurposeScopes
GET /auth/statusVerify the current Agent Access tokennone

GET /auth/status

Verify the current Agent Access token

Authenticates the token and reports its granted scopes without requiring canvas, asset, image, or job access.

  • Operation id: getAuthStatus
  • Scopes: Requires a valid Agent Access token; no additional product scope.
  • CLI equivalent: gavana auth status

Responses

StatusPayloadMeaning
200AuthStatusThe authenticated identity and Agent Access scopes. No token secret is returned.
defaultErrorResponseA stable machine-readable error. The response always includes X-Request-ID.

200 response body

FieldTypeRequiredNotes
authTypestringYesOne of agent, firebase.
emailstring (email)Yes—
scopesarray of string | nullYes—
agentTokenIdstring (uuid)No—
agentLabelstringNomax length 80.

Example

curl "https://app.gavana.ai/api/canvas-agent/v1/auth/status" \ -H "Authorization: Bearer $GAVANA_AGENT_TOKEN"

Errors

Every failure uses the shared error envelope described in Errors and X-Request-ID. The response always carries X-Request-ID; share that value with support instead of the request payload.

Last updated on